MarioBartolome / Jenkins-pRCE-exploitLinks
Jenkins pre-auth RCE exploit. More info at https://jenkins.io/security/advisory/2019-01-08/#SECURITY-1266 https://blog.orange.tw/2019/02/abusing-meta-programming-for-unauthenticated-rce.html
☆10Updated 6 years ago
Alternatives and similar repositories for Jenkins-pRCE-exploit
Users that are interested in Jenkins-pRCE-exploit are comparing it to the libraries listed below
Sorting:
- ☆14Updated 5 years ago
- JavaScript functions intended to be used as an XSS payload against a WordPress admin account.☆55Updated 4 years ago
- A list of "secrets" from JWT sample code and readme files.☆55Updated 4 years ago
- Subdomain Enumeration Wordlist. 8956437 unique words. Updated.☆75Updated 5 years ago
- This Repo contains wordlist for subdomain enumeration , php file path, html file path, and js file path☆103Updated 5 years ago
- A Burp extension to detect and exploit versions of Telerik Web UI vulnerable to CVE-2017-9248.☆98Updated 7 years ago
- Hacked together script for feeding urls into Burp's Sitemap☆93Updated 4 months ago
- ☆76Updated 4 years ago
- Local File Inclusion Burp-Suite Intruder Payload Generator Plugin☆40Updated 4 years ago
- Vulnerable webapp testbed☆22Updated 9 years ago
- Get all possible href | src | url from target url or domain☆41Updated 5 years ago
- A simple remote scanner for Atlassian Jira☆121Updated 2 years ago
- ☆120Updated 8 years ago
- Cheat sheet☆36Updated 5 years ago
- Scanner for Cross-Site WebSocket Hijacking☆42Updated 5 years ago
- Messy BurpSuite plugin for SQL Truncation vulnerabilities.☆63Updated 5 years ago
- 📚 An ultimate collection wordlists of the best-known CMS☆91Updated last year
- This repository is intended for sharing files/tools/tutorials..etc that related to eWPTXv1 from eLearnSecurity☆23Updated 5 years ago
- Extract subdomains from rapiddns.io☆23Updated 2 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆76Updated 3 years ago
- Searching for virtual hosts among non-resolvable domains☆88Updated 5 years ago
- A simple tool to detect wildcards domain based on Amass's wildcards detector.☆64Updated 4 years ago
- ☆48Updated 4 years ago
- A collection of code for interacting with API sources directly to improve your understanding of those services.☆66Updated 4 years ago
- Python script to give you subsets of the nmap "top-ports". For example, I want the 10th to 100th most common TCP ports. Spits out a comma…☆17Updated 5 years ago
- Just a simple SMTP server, implementation of @corpix smtpd library☆15Updated 5 years ago
- Generate wordlists for fuzzing API method names☆54Updated 4 years ago
- ☆22Updated 3 years ago
- gathers the XSS cheatsheet payloads and creates a usable wordlist☆72Updated 4 years ago
- All known and unknown public POC's for wordpress themes and plugins☆78Updated 4 years ago